This page serves as a central point of information regarding SSL certificate management for applications, devices, and operating systems. Administrators are encouraged to use the information on this page to help better secure their environments. Most of these procedures will remediate one or more Tenable plugins and therefore should help sites improve their monthly vulnerability management scores. Guidance on this …
Read More…
DHS EMERGENCY DIRECTIVE 20-02 INFORMATION:
The Department of Homeland Security (DHS) has issued Emergency directive 20-02 which requires all systems to have this patch applied within 10 business days of the Microsoft patch release date.
- CryptoAPI spoofing vulnerability – CVE-2020-0601: This vulnerability affects all machines running 32- or 64-bit Windows 10 operating systems, including Windows Server versions 2016 …
Read More…
In the fall of 2014, USGS system administrators started receiving warning messages from the Enterprise Vulnerability Management System (eVMS) from Tenable Nessus plugin 62758 about a MSXML4 vulnerability. It is rated as a Critical Severity vulnerability by NIST strictly because MSXML4 has been at End Of Life (unsupported) since 04/12/2014 as reported by Microsoft.
The following is a guide to help …
Read More…